Aruba Central Conversion Guide | Helium Documentation

Prerequisites

Before starting, confirm the following:


High-Level Steps

  1. Upload Helium RadSec Certificates
  2. Configure SSID for RadSec
  3. Configure Passpoint Settings
  4. Connect and Validate

note

This guide applies to "Classic Central".

If your Aruba dashboard shows a "Classic Central" toggle, enable it.

Upload Helium RadSec Certificates

Helium requires RADIUS traffic to be secured using RadSec (RADIUS over TLS).

Download the following from the Helium onboarding process (either from the WiFi Conversion process or sent to you by your Helium Plus contact):

Navigate to:

Global → Organization → Network Structure → Certificates


Upload Server CA

Navigate to 'Organization' then 'Certificates'

Create a new certificate with the following values:


Upload Client Certificate

Create another certificate:


Configure SSID for RadSec

Navigate to:

Devices → WLANs

Note: Ensure you've selected your AP first or the WLAN options won't show.

Click Add SSID and enter the SSID name.


SSID General Configuration

Set the following values:

Click Next.

Click Next.

Click Add next to Primary Server and create a new authentication server.


Create RadSec Authentication Server

Configure the authentication server with the following values:

Click OK.


Complete SSID Settings

Verify the following:

Troubleshooting

If authentication fails, check the following:

Connect and Validate

Connect a client device to the newly created SSID.

Verify successful authentication.